Fedoraproject Fedora vulnerabilities
5,279 known vulnerabilities affecting fedoraproject/fedora.
Total CVEs
5,279
CISA KEV
85
actively exploited
Public exploits
169
Exploited in wild
139
Severity breakdown
CRITICAL515HIGH2326MEDIUM2265LOW173
Vulnerabilities
Page 59 of 264
CVE-2014-9220P3HIGHCVSS 7.5v212014-12-03
CVE-2014-9220 [HIGH] CWE-89 CVE-2014-9220: SQL injection vulnerability in OpenVAS Manager before 4.0.6 and 5.x before 5.0.7 allows remote attac
SQL injection vulnerability in OpenVAS Manager before 4.0.6 and 5.x before 5.0.7 allows remote attackers to execute arbitrary SQL commands via the timezone parameter in a modify_schedule OMP command.
nvd
CVE-2022-32511P3CRITICALCVSS 9.8v35v362022-06-06
CVE-2022-32511 [CRITICAL] CVE-2022-32511: jmespath.rb (aka JMESPath for Ruby) before 1.6.1 uses JSON.load in a situation where JSON.parse is p
jmespath.rb (aka JMESPath for Ruby) before 1.6.1 uses JSON.load in a situation where JSON.parse is preferable.
nvd
CVE-2012-1149P3HIGHCVSS 7.5v15v162012-06-21
CVE-2012-1149 [HIGH] CWE-189 CVE-2012-1149: Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier
Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted embedded image object, as demonstrated by a JPEG image in a .DOC file, which triggers a heap-based b
nvd
CVE-2018-1000878P3HIGHCVSS 8.8v28v29+1 more2018-12-20
CVE-2018-1000878 [HIGH] CWE-416 CVE-2018-1000878: libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards)
libarchive version commit 416694915449219d505531b1096384f3237dd6cc onwards (release v3.1.0 onwards) contains a CWE-416: Use After Free vulnerability in RAR decoder - libarchive/archive_read_support_format_rar.c that can result in Crash/DoS - it is unknown if RCE is possible. This attack appear to be exploitable via the victim must open a specially
nvd
CVE-2016-4001P3HIGHCVSS 8.6v22v23+1 more2016-05-23
CVE-2016-4001 [HIGH] CWE-120 CVE-2016-4001: Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the
Buffer overflow in the stellaris_enet_receive function in hw/net/stellaris_enet.c in QEMU, when the Stellaris ethernet controller is configured to accept large packets, allows remote attackers to cause a denial of service (QEMU crash) via a large packet.
nvd
CVE-2022-25763P3HIGHCVSS 7.5v35v362022-08-10
CVE-2022-25763 [HIGH] CWE-444 CVE-2022-25763: Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows
Improper Input Validation vulnerability in HTTP/2 request validation of Apache Traffic Server allows an attacker to create smuggle or cache poison attacks. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.
nvd
CVE-2021-20247P3HIGHCVSS 7.4v32v332021-02-23
CVE-2021-20247 [HIGH] CWE-20 CVE-2021-20247: A flaw was found in mbsync before v1.3.5 and v1.4.1. Validations of the mailbox names returned by IM
A flaw was found in mbsync before v1.3.5 and v1.4.1. Validations of the mailbox names returned by IMAP LIST/LSUB do not occur allowing a malicious or compromised server to use specially crafted mailbox names containing '..' path components to access data outside the designated mailbox on the opposite end of the synchronization channel. The highest thre
nvd
CVE-2019-13107P3CRITICALCVSS 9.8v312019-06-30
CVE-2019-13107 [CRITICAL] CWE-190 CVE-2019-13107: Multiple integer overflows exist in MATIO before 1.5.16, related to mat.c, mat4.c, mat5.c, mat73.c,
Multiple integer overflows exist in MATIO before 1.5.16, related to mat.c, mat4.c, mat5.c, mat73.c, and matvar_struct.c
nvd
CVE-2021-30618P3HIGHCVSS 8.8v352021-09-03
CVE-2021-30618 [HIGH] CVE-2021-30618: Chromium: CVE-2021-30618 Inappropriate implementation in DevTools
Chromium: CVE-2021-30618 Inappropriate implementation in DevTools
nvd
CVE-2021-30608P3HIGHCVSS 8.8v352021-09-03
CVE-2021-30608 [HIGH] CWE-416 CVE-2021-30608: Chromium: CVE-2021-30608 Use after free in Web Share
Chromium: CVE-2021-30608 Use after free in Web Share
nvd
CVE-2023-4147P3HIGHCVSS 7.8v382023-08-07
CVE-2023-4147 [HIGH] CWE-416 CVE-2023-4147: A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule wit
A use-after-free flaw was found in the Linux kernel’s Netfilter functionality when adding a rule with NFTA_RULE_CHAIN_ID. This flaw allows a local user to crash or escalate their privileges on the system.
nvd
CVE-2019-3992P3HIGHCVSS 7.5v30v312019-12-17
CVE-2019-3992 [HIGH] CWE-200 CVE-2019-3992: ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauth
ELOG 3.1.4-57bea22 and below is affected by an information disclosure vulnerability. A remote unauthenticated attacker can access the server's configuration file by sending an HTTP GET request. Amongst the configuration data, the attacker may gain access to valid admin usernames and, in older versions of ELOG, passwords.
nvd
CVE-2021-21216P3MEDIUMCVSS 6.5v32v33+1 more2021-04-26
CVE-2021-21216 [MEDIUM] CWE-290 CVE-2021-21216: Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote att
Inappropriate implementation in Autofill in Google Chrome prior to 90.0.4430.72 allowed a remote attacker to spoof security UI via a crafted HTML page.
nvd
CVE-2014-4668P3MEDIUMCVSS 6.8v20v21+1 more2014-07-02
CVE-2014-4668 [MEDIUM] CWE-287 CVE-2014-4668: The cherokee_validator_ldap_check function in validator_ldap.c in Cherokee 1.2.103 and earlier, when
The cherokee_validator_ldap_check function in validator_ldap.c in Cherokee 1.2.103 and earlier, when LDAP is used, does not properly consider unauthenticated-bind semantics, which allows remote attackers to bypass authentication via an empty password.
nvd
CVE-2023-36328P3CRITICALCVSS 9.8v37v38+1 more2023-09-01
CVE-2023-36328 [CRITICAL] CWE-190 CVE-2023-36328: Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667a
Integer Overflow vulnerability in mp_grow in libtom libtommath before commit beba892bc0d4e4ded4d667ab1d2a94f4d75109a9, allows attackers to execute arbitrary code and cause a denial of service (DoS).
nvd
CVE-2023-28333P3CRITICALCVSS 9.8v362023-03-23
CVE-2023-28333 [CRITICAL] CWE-94 CVE-2023-28333: The Mustache pix helper contained a potential Mustache injection risk if combined with user input (n
The Mustache pix helper contained a potential Mustache injection risk if combined with user input (note: This did not appear to be implemented/exploitable anywhere in the core Moodle LMS).
nvd
CVE-2020-6522P3CRITICALCVSS 9.6v31v322020-07-22
CVE-2020-6522 [CRITICAL] CVE-2020-6522: Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 al
Inappropriate implementation in external protocol handlers in Google Chrome prior to 84.0.4147.89 allowed a remote attacker to potentially perform a sandbox escape via a crafted HTML page.
nvd
CVE-2020-6465P3CRITICALCVSS 9.6v31v322020-05-21
CVE-2020-6465 [CRITICAL] CWE-416 CVE-2020-6465: Use after free in reader mode in Google Chrome on Android prior to 83.0.4103.61 allowed a remote att
Use after free in reader mode in Google Chrome on Android prior to 83.0.4103.61 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a crafted HTML page.
nvd
CVE-2020-15961P3CRITICALCVSS 9.6v31v32+1 more2020-09-21
CVE-2020-15961 [CRITICAL] CVE-2020-15961: Insufficient policy validation in extensions in Google Chrome prior to 85.0.4183.121 allowed an atta
Insufficient policy validation in extensions in Google Chrome prior to 85.0.4183.121 allowed an attacker who convinced a user to install a malicious extension to potentially perform a sandbox escape via a crafted Chrome Extension.
nvd
CVE-2023-30944P3HIGHCVSS 7.3v36v37+1 more2023-05-02
CVE-2023-30944 [HIGH] CWE-89 CVE-2023-30944: The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied da
The vulnerability was found Moodle which exists due to insufficient sanitization of user-supplied data in external Wiki method for listing pages. A remote attacker can send a specially crafted request to the affected application and execute limited SQL commands within the application database.
nvd